#Blog


Claude Code Security Alert: Critical Flaws Expose API Keys and Allow RCE

Feb 25, 2026 // 21:26

Check Point Research and Anthropic disclosed critical security vulnerabilities in Claude Code, an agentic AI coding tool. The flaws allowed attackers to execute arbitrary shell commands and exfiltrate sensitive […]

CISA Issues Emergency Directive Following 3-Year Zero-Day Campaign Against Cisco SD-WAN

Feb 25, 2026 // 21:17

Cisco and Cisco Talosdisclosed that a sophisticated threat actor, tracked as UAT-8616, has been exploiting a zero-day vulnerability in Cisco Catalyst SD-WAN Controllerssince at least 2023. CVE-2026-20127: The Zero-Day How […]

SonicWall Facing Lawsuit After Backup Flaw Allegedly Triggered Marquis Ransomware Crisis

Feb 25, 2026 // 19:32

Fintech firm Marquis Software Solutions has filed a lawsuit against SonicWall, alleging that a security failure in the provider’s cloud infrastructure paved the way for a massive ransomware […]

This Convincing Zoom Scam Is Silently Installing Spyware

Feb 25, 2026 // 19:26

Researchers discovered a phishing campaign using a fake Zoom meeting page to trick users into silently installing commercial surveillance software. How the Attack Works The Payload: Teramind […]

SLH Cyber Group Recruiting Women for High-Stakes IT Help Desk Vishing Attacks

Feb 25, 2026 // 18:50

The cybercrime alliance Scattered LAPSUS$ Hunters (SLH) is reportedly offering $500 to $1,000 upfront per call to recruit women for targeted voice phishing (vishing) operations. This tactical shift leverages […]

NuGet and npm Malicious Packages Steal ASP.NET Data and Drop Malware

Feb 25, 2026 // 17:36

Recent supply chain attacks on NuGet and npm have targeted developers by exfiltrating sensitive application data and deploying cross-platform malware. Malicious NuGet Packages: ASP.NET Data Theft Researchers at Socket identified four […]

US Treasury Sanctions Russian Broker Operation Zero for Acquiring Stolen Zero-Day Exploits

Feb 25, 2026 // 14:09

The U.S. Treasury Department’s Office of Foreign Assets Control (OFAC) has sanctioned the Russian exploit broker Operation Zero (also known as Matrix LLC) and its founder, Sergey Zelenyuk, for purchasing […]

Former L3Harris Cyber Chief Sentenced to 7 Years for Selling Zero-Days to Russia

Feb 25, 2026 // 11:30

Peter Williams, the 39-year-old former General Manager of L3Harris Technologies‘ cyber division, Trenchant, was sentenced to seven years and three months in prison for stealing and selling sensitive zero-day […]

Apache ActiveMQ Exploit Leads to LockBit Ransomware Deployment

Feb 25, 2026 // 11:21

Threat actors are actively exploiting CVE-2023-46604, a critical remote code execution (RCE) vulnerability in Apache ActiveMQ, to gain initial access, move laterally via Remote Desktop Protocol (RDP), […]

CISA Adds FileZen OS Command Injection Flaw (CVE-2026-25108) to Known Exploited Vulnerabilities Catalog

Feb 25, 2026 // 10:07

The Cybersecurity and Infrastructure Security Agency (CISA) added CVE-2026-25108 to its Known Exploited Vulnerabilities (KEV) Catalog, confirming active exploitation of this flaw in the wild. Vulnerability Breakdown Mandatory Remediation […]

Previous 1 … 373 374 375 376 377 … 381 Next